Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Ubuntu: 2005-442 Urgent: Roundcube Remote Code Execution Vulnerability

fedora
Calendar Grey June 7, 2006
Dist Fedora Esm H88
SquirrelMail patch addresses serious file inclusion vulnerability in Fedora Core 4. Ensure you apply the latest security update.
CVE-2006-2842 Squirrelmail File Inclusion

Summary

SquirrelMail is a standards-based webmail package written in PHP4. It

includes built-in pure PHP support for the IMAP and SMTP protocols, and

all pages render in pure HTML 4.0 (with no Javascript) for maximum

compatibility across browsers. It has very few requirements and is very

easy to configure and install. SquirrelMail has all the functionality

you would want from an email client, including strong MIME support,

address books, and folder manipulation.

CVE-2006-2842 Squirrelmail File Inclusion

- CVE-2006-2842 File Inclusion Vulnerability

* Mon Jun 5 2006 Warren Togami 1.4.6-6

- buildreq gettext (194169)

6991c73223c32d99e329ef0dfeca62a5697e9882 SRPMS/squirrelmail-1.4.6-7.fc4.src.rpm

6991c73223c32d99e329ef0dfeca62a5697e9882 noarch/squirrelmail-1.4.6-7.fc4.src.rpm

76ea21f3c5298556dffc841eb047cabfd21620d3 ppc/squirrelmail-1.4.6-7.fc4.noarch.rpm

76ea21f3c5298556dffc841eb047cabfd21620d3 x86_64/squirrelmail-1.4.6-7.fc4.noarch.rpm

76ea21f3c5298556dffc841eb047cabfd21620d3 i386/squirrelmail-1.4.6-7.fc4.noarch.rpm

This update can be installed with the 'yum' update program. Use 'yum update

package-name' at the command line. For more information, refer to 'Managing

Software with yum,' available at .

Fedora-package-announce mailing list

Fedora-package-announce@redhat.com

https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Change Log

References

Update Instructions

Severity
critical
Lowest
Low
Medium
High
Critical

Name: squirrelmail
Version: 1.4.6
Release: 7.fc4
Summary: SquirrelMail webmail client

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here